Skip to content

Commit 68c271d

Browse files
committed
chore: github action deps safety
1 parent 68587c9 commit 68c271d

File tree

4 files changed

+35
-26
lines changed

4 files changed

+35
-26
lines changed

.github/workflows/ci.yml

Lines changed: 25 additions & 18 deletions
Original file line numberDiff line numberDiff line change
@@ -19,14 +19,14 @@ jobs:
1919

2020
steps:
2121
- name: Checkout codes
22-
uses: actions/checkout@v5
22+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
2323
with:
2424
fetch-depth: 0
2525

2626
- name: Setup deno
27-
uses: denoland/setup-deno@v1
27+
uses: denoland/setup-deno@e95548e56dfa95d4e1a28d6f422fafe75c4c26fb # v2.0.3
2828
with:
29-
deno-version: 2.x
29+
deno-version: v2.5
3030

3131
- name: Lint codes
3232
run: deno lint
@@ -42,21 +42,23 @@ jobs:
4242

4343
steps:
4444
- name: Checkout codes
45-
uses: actions/checkout@v5
45+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
4646

4747
- name: Setup deno
48-
uses: denoland/setup-deno@v1
48+
uses: denoland/setup-deno@e95548e56dfa95d4e1a28d6f422fafe75c4c26fb # v2.0.3
4949
with:
50-
deno-version: 2.x
50+
deno-version: v2.5
5151

5252
- name: Setup bun
53-
uses: oven-sh/setup-bun@v2
53+
uses: oven-sh/setup-bun@735343b667d3e6f658f44d0eca948eb6282f2b76 # v2.0.2
54+
with:
55+
bun-version: v1.3
5456

5557
- name: Enable corepack
5658
run: corepack enable
5759

5860
- name: Setup node
59-
uses: actions/setup-node@v6
61+
uses: actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444 # v5.0.0
6062
with:
6163
node-version: ${{ matrix.node }}
6264

@@ -77,18 +79,20 @@ jobs:
7779

7880
steps:
7981
- name: Checkout codes
80-
uses: actions/checkout@v5
82+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
8183

8284
- name: Setup deno
83-
uses: denoland/setup-deno@v1
85+
uses: denoland/setup-deno@e95548e56dfa95d4e1a28d6f422fafe75c4c26fb # v2.0.3
8486
with:
85-
deno-version: 2.x
87+
deno-version: v2.5
8688

8789
- name: Setup bun
88-
uses: oven-sh/setup-bun@v2
90+
uses: oven-sh/setup-bun@735343b667d3e6f658f44d0eca948eb6282f2b76 # v2.0.2
91+
with:
92+
bun-version: v1.3
8993

9094
- name: Setup node
91-
uses: actions/setup-node@v6
95+
uses: actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444 # v5.0.0
9296
with:
9397
node-version: ${{ matrix.node }}
9498

@@ -114,17 +118,20 @@ jobs:
114118
node: [20]
115119
steps:
116120
- name: Checkout codes
117-
uses: actions/checkout@v5
121+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # v5.0.0
118122

119123
- name: Setup deno
120-
uses: denoland/setup-deno@v1
124+
uses: denoland/setup-deno@e95548e56dfa95d4e1a28d6f422fafe75c4c26fb # v2.0.3
121125
with:
122-
deno-version: 2.x
126+
deno-version: v2.5
123127

124128
- name: Setup bun
125-
uses: oven-sh/setup-bun@v2
129+
uses: oven-sh/setup-bun@735343b667d3e6f658f44d0eca948eb6282f2b76 # v2.0.2
130+
with:
131+
bun-version: v1.3
126132

127-
- uses: actions/setup-node@v6
133+
- name: Setup node
134+
uses: actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444 # v5.0.0
128135
with:
129136
node-version: ${{ matrix.node }}
130137

.github/workflows/github-label-sync.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,4 +13,4 @@ jobs:
1313
sync:
1414
runs-on: ubuntu-latest
1515
steps:
16-
- uses: r7kamura/github-label-sync-action@v0
16+
- uses: r7kamura/github-label-sync-action@061649dd3b80eb5bafad0316466f72962e62c300 # v0.1.0

.github/workflows/release.yml

Lines changed: 9 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -13,20 +13,22 @@ jobs:
1313
runs-on: ubuntu-latest
1414
steps:
1515
- name: Checkout codes
16-
uses: actions/checkout@v5
16+
uses: r7kamura/github-label-sync-action@061649dd3b80eb5bafad0316466f72962e62c300 # v0.1.0
1717
with:
1818
ref: ${{ github.head_ref }}
1919

2020
- name: Setup deno
21-
uses: denoland/setup-deno@v1
21+
uses: denoland/setup-deno@e95548e56dfa95d4e1a28d6f422fafe75c4c26fb # v2.0.3
2222
with:
23-
deno-version: 2.x
23+
deno-version: v2.5
2424

2525
- name: Setup bun
26-
uses: oven-sh/setup-bun@v2
26+
uses: oven-sh/setup-bun@735343b667d3e6f658f44d0eca948eb6282f2b76 # v2.0.2
27+
with:
28+
bun-version: v1.3
2729

2830
- name: Setup Node
29-
uses: actions/setup-node@v6
31+
uses: actions/setup-node@a0853c24544627f65ddf259abe73b1d18a591444 # v5.0.0
3032
with:
3133
node-version: 20
3234

@@ -35,7 +37,7 @@ jobs:
3537

3638
- name: Extract version tag
3739
if: startsWith( github.ref, 'refs/tags/v' )
38-
uses: jungwinter/split@v2
40+
uses: jungwinter/split@7f51d99e7cc1f147f6f99be75acf5e641930af88 # v2.1.0
3941
id: split
4042
with:
4143
msg: ${{ github.ref }}
@@ -56,7 +58,7 @@ jobs:
5658
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
5759

5860
- name: Commit changelog
59-
uses: stefanzweifel/git-auto-commit-action@v7
61+
uses: stefanzweifel/git-auto-commit-action@28e16e81777b558cc906c8750092100bbb34c5e3 # v7.0.0
6062
with:
6163
branch: main
6264
file_pattern: '*.md'

bun.lockb

3.3 KB
Binary file not shown.

0 commit comments

Comments
 (0)